Combo fix:
Done ...here is the log!
Thanks for you help!
-------------------------
ComboFix 07.01.31 - Running from: "C:\Documents and Settings\James\Desktop"
(((((((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
C:\Program Files\Common Files\Yazzle1122OinUninstaller.exe
C:\DOCUME~1\James\Application Data\Dxcknwrd.dll
C:\Program Files\Common Files\{3C534600-0A2E-2057-0813-03030217002c}
((((((((((((((((((((((((((((((( Files Created from 2007-01-02 to 2007-02-02 ))))))))))))))))))))))))))))))))))
2007-01-30 15:50 <DIR> d-------- C:\WINDOWS\LastGood
2007-01-29 15:34 <DIR> d-------- C:\WINDOWS\system32\LogFiles
2007-01-25 16:36 <DIR> d-------- C:\DOCUME~1\James\DoctorWeb
2007-01-25 14:21 79,360 --a------ C:\WINDOWS\system32\swxcacls.exe
2007-01-25 14:21 51,200 --a------ C:\WINDOWS\system32\dumphive.exe
2007-01-25 14:21 3,740 --a------ C:\WINDOWS\system32\tmp.reg
2007-01-25 13:59 <DIR> d-------- C:\Program Files\Safer Networking
2007-01-24 01:14 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\Application Data\Avg7
2007-01-24 01:00 <DIR> d-------- C:\DOCUME~1\James\Application Data\Comodo
2007-01-24 01:00 <DIR> d-------- C:\DOCUME~1\ALLUSE~1\Application Data\Comodo
2007-01-23 23:57 94,424 --a------ C:\WINDOWS\system32\drivers\aswmon2.sys
2007-01-23 23:57 90,112 --a------ C:\WINDOWS\system32\AVASTSS.scr
2007-01-23 23:57 85,952 --a------ C:\WINDOWS\system32\drivers\aswmon.sys
2007-01-23 23:57 689,280 --a------ C:\WINDOWS\system32\aswBoot.exe
2007-01-23 23:57 43,176 --a------ C:\WINDOWS\system32\drivers\aswTdi.sys
2007-01-23 23:57 31,560 --a------ C:\WINDOWS\system32\drivers\aavmker4.sys
2007-01-23 23:57 23,352 --a------ C:\WINDOWS\system32\drivers\aswRdr.sys
2007-01-23 23:57 <DIR> d-------- C:\Program Files\Avast4
2007-01-23 23:53 75,264 --a------ C:\WINDOWS\system32\drivers\cmdmon.sys
2007-01-23 23:53 51,328 --a------ C:\WINDOWS\system32\drivers\inspect.sys
2007-01-23 23:53 <DIR> d-------- C:\Program Files\Comodo
2007-01-23 23:44 <DIR> d-------- C:\Program Files\TweakNow RegCleaner Std
2007-01-23 17:30 <DIR> d-------- C:\Program Files\Common Files\Java
2007-01-19 12:53 51,056 --a------ C:\WINDOWS\system32\sirenacm.dll
2007-01-17 13:50 7,680 --a------ C:\WINDOWS\system32\LW400MON.DLL
2007-01-17 13:50 7,680 --a------ C:\WINDOWS\system32\DUO_D1MON.DLL
2007-01-16 18:02 <DIR> d-------- C:\Program Files\SatelliteTVforPC
2007-01-16 02:21 <DIR> d-------- C:\Program Files\TVUPlayer
2007-01-16 01:53 <DIR> d-------- C:\Program Files\TVAnts
2007-01-16 01:52 <DIR> d-------- C:\Program Files\TVto PC
2007-01-16 01:50 <DIR> d-------- C:\WINDOWS\uninstall
2007-01-10 03:06 <DIR> d-------- C:\WINDOWS\ie7updates
(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))
2007-02-01 07:46 -------- d-------- C:\Program Files\quicken online backup
2007-01-31 15:45 -------- d-------- C:\Program Files\efax messenger plus 3.3
2007-01-31 00:40 -------- d-------- C:\DOCUME~1\James\Application Data\adobeum
2007-01-30 15:50 -------- d-------- C:\Program Files\msn messenger
2007-01-30 15:21 -------- d-------- C:\Program Files\google
2007-01-29 17:01 -------- d-------- C:\Program Files\dymo label
2007-01-29 13:38 -------- d-------- C:\Program Files\avg anti-spyware 7.5
2007-01-25 21:58 -------- d-------- C:\Program Files\quickbooks pro
2007-01-25 14:30 3623736 --a------ C:\WINDOWS\procexp.exe
2007-01-23 17:31 -------- d-------- C:\Program Files\java
2007-01-21 06:24 -------- d-------- C:\DOCUME~1\James\Application Data\bittorrent
2007-01-19 09:38 -------- d-------- C:\Program Files\bittorrent
2007-01-12 18:14 -------- d-------- C:\Program Files\voipcheapcom
2007-01-10 01:59 -------- d-------- C:\Program Files\auction sentry deluxe
2006-12-29 15:02 -------- d-------- C:\Program Files\quicken xg
2006-12-12 18:14 -------- d-------- C:\Program Files\windows media connect 2
2006-12-12 18:05 -------- d-------- C:\Program Files\windows media connect
2006-12-08 12:06 -------- d-------- C:\Program Files\messenger plus! live
2006-12-06 17:06 -------- d--h----- C:\Program Files\installshield installation information
2006-12-06 17:06 -------- d-------- C:\Program Files\sling media
2006-11-08 05:06 679424 --a------ C:\WINDOWS\system32\inetcomm.dll
2006-11-04 14:14 1245696 --a------ C:\WINDOWS\system32\msxml4.dll
(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))
*Note* empty entries & legit default entries are not shown
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"QuickenScheduledUpdates"="C:\\Program Files\\QUICKEN USA 2006\\bagent.exe"
"VoipCheapCom"="\"C:\\Program Files\\VoipCheapCom\\VoipCheapCom.exe\" -nosplash -minimized"
"ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe"
"msnmsgr"="\"C:\\Program Files\\MSN Messenger\\msnmsgr.exe\" /background"
"WMPNSCFG"="C:\\Program Files\\Windows Media Player\\WMPNSCFG.exe"
"swg"="C:\\Program Files\\Google\\GoogleToolbarNotifier\\1.2.1128.5462\\GoogleToolbarNotifier.exe"
"SpybotSD TeaTimer"="C:\\Program Files\\Spybot - Search & Destroy\\TeaTimer.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"PHIME2002ASync"="C:\\WINDOWS\\system32\\IME\\TINTLGNT\\TINTSETP.EXE /SYNC"
"PHIME2002A"="C:\\WINDOWS\\system32\\IME\\TINTLGNT\\TINTSETP.EXE /IMEName"
"PCMService"="\"C:\\Program Files\\Home Cinema\\PowerCinema\\PCMService.exe\""
"HTpatch"="C:\\WINDOWS\\htpatch.exe"
"Google Desktop Search"="\"C:\\Program Files\\Google\\Google Desktop Search\\GoogleDesktop.exe\" /startup"
"FLMOFFICE4DMOUSE"="C:\\Program Files\\Browser MOUSE\\mouse32a.exe"
"FLMK08KB"="C:\\Program Files\\Muiltmedia keyboard Utility\\1.3\\KbdAp32A.exe"
"Dit"="Dit.exe"
"ControlCenter2.0"="C:\\Program Files\\Brother\\ControlCenter2\\brctrcen.exe /autorun"
"AWLGTSTA.exe"="C:\\WINDOWS\\system32\\AWLGTSTA.exe /START"
"ShopSafe"="C:\\Program Files\\ShopSafe\\ShopSafe.exe /dontopenmycards"
"MSPY2002"="C:\\WINDOWS\\system32\\IME\\PINTLGNT\\ImScInst.exe /SYNC"
"BigDogPath"="C:\\WINDOWS\\VM_STI.EXE VIMICRO USB PC Camera"
"SoundMan"="SOUNDMAN.EXE"
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"PCSuiteTrayApplication"="C:\\Program Files\\Nokia\\Nokia PC Suite 6\\LaunchApplication.exe -onlytray"
"SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre1.5.0_10\\bin\\jusched.exe\""
"COMODO Firewall Pro"="\"C:\\Program Files\\Comodo\\Firewall\\CPF.exe\" /background"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run-]
"msnmsgr"="\"C:\\Program Files\\MSN Messenger\\msnmsgr.exe\" /background"
"ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run-]
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"ccApp"="\"C:\\Program Files\\Common Files\\Symantec Shared\\ccApp.exe\""
"InCD"="C:\\Program Files\\Ahead\\InCD\\InCD.exe"
"NeroFilterCheck"="C:\\WINDOWS\\system32\\NeroCheck.exe"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"=""
"hkey"="HKLM"
"command"=""
"inimapping"="0"
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\services]
"GBPoll"=dword:00000002
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"appinit_dlls"=""C:\PROGRA~1\Google\Google Desktop Search\GOEC62~1.DLL""
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{091EB208-39DD-417D-A5DD-7E2C2D8FB9CB}"="Microsoft AntiMalware ShellExecuteHook"
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
"UPnPMonitor"="{e57ce738-33e8-4c51-8354-bb4de9d215d1}"
"WPDShServiceObj"="{AAA288BA-9A4C-45B0-95D7-94D524869DB5}"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"DisableCAD"=dword:00000001
"NoDispCPL"=dword:00000000
"NoDispAppearancePage"=dword:00000000
"NoDispBackgroundPage"=dword:00000000
"NoDispSettingsPage"=dword:00000000
"NoDispScrSavPage"=dword:00000000
"DisableRegistryTools"=dword:00000000
"DisableTaskMgr"=dword:00000000
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\system]
"DisableTaskMgr"=dword:00000000
"NoDispAppearancePage"=dword:00000000
"NoColorChoice"=dword:00000000
"NoSizeChoice"=dword:00000000
"NoDispBackgroundPage"=dword:00000000
"NoDispScrSavPage"=dword:00000000
"NoDispCPL"=dword:00000000
"NoVisualStyleChoice"=dword:00000000
"NoDispSettingsPage"=dword:00000000
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"NoWinKeys"=dword:00000000
"NoShellSearchButton"=dword:00000000
"NoFileAssociate"=dword:00000000
"NoFileMenu"=dword:00000000
"NoFolderOptions"=dword:00000000
"StartMenuLogoff"=dword:00000000
"NoSMHelp"=dword:00000000
"NoTrayContextMenu"=dword:00000000
"NoToolbarsOnTaskbar"=dword:00000000
"NoResolveTrack"=dword:00000001
"NoActiveDesktopChanges"=dword:00000000
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer\run]
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoWinKeys"=dword:00000000
"NoShellSearchButton"=dword:00000000
"NoFileAssociate"=dword:00000000
"NoFileMenu"=dword:00000000
"NoFolderOptions"=dword:00000000
"NoFind"=dword:00000000
"NoRun"=dword:00000000
"NoClose"=dword:00000000
"NoCommonGroups"=dword:00000000
"StartMenuLogoff"=dword:00000000
"NoSMHelp"=dword:00000000
"NoTrayContextMenu"=dword:00000000
"NoToolbarsOnTaskbar"=dword:00000000
"NoCDBurning"=dword:00000000
"NoRecentDocsHistory"=dword:00000000
"ClearRecentDocsOnExit"=dword:00000000
"NoActiveDesktop"=dword:00000000
"NoSaveSettings"=dword:00000000
"NoThemesTab"=dword:00000000
"ForceActiveDesktopOn"=dword:00000000
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer\Run]
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\ddaba
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\winjvd32
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"
[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost]
LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0
NetworkService REG_MULTI_SZ DnsCache\0\0
rpcss REG_MULTI_SZ RpcSs\0\0
imgsvc REG_MULTI_SZ StiSvc\0\0
termsvcs REG_MULTI_SZ TermService\0\0
HTTPFilter REG_MULTI_SZ HTTPFilter\0\0
DcomLaunch REG_MULTI_SZ DcomLaunch\0TermService\0\0
bthsvcs REG_MULTI_SZ BthServ\0\0
WudfServiceGroup REG_MULTI_SZ WUDFSvc\0\0
*newlycreated* - HKEY_LOCAL_MACHINE\system\currentcontrolset\enum\root\LEGACY_USNJSVC
~ ~ ~ ~ ~ ~ ~ ~ Hijackthis Backups ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~
backup-20070129-142447-916
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Avast4\ashWebSv.exe" /service (file missing)
backup-20070129-142447-819
O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Unknown owner - C:\WINDOWS\system32\Brmfrmps.exe" -service (file missing)
backup-20070129-142447-552
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\AVG Anti-Spyware 7.5\guard.exe
backup-20070129-142447-707
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Avast4\aswUpdSv.exe
backup-20070129-142447-102
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Avast4\ashMaiSv.exe" /service (file missing)
backup-20070129-142447-927
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\Avast4\ashDisp.exe
backup-20070127-220519-213
O2 - BHO: (no name) - {C004DEC2-2623-438e-9CA2-C9043AB28508} - (no file)
backup-20070127-220519-399
O2 - BHO: (no name) - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - (no file)
backup-20070127-220519-535
O2 - BHO: (no name) - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - (no file)
backup-20070127-220519-838
O2 - BHO: (no name) - {7D0BDFB8-2509-447B-AD0E-C7BEF92B3A13} - (no file)
backup-20070127-220519-755
O2 - BHO: (no name) - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - (no file)
backup-20070125-144043-838
O2 - BHO: (no name) - {C004DEC2-2623-438e-9CA2-C9043AB28508} - (no file)
backup-20070125-144043-996
O2 - BHO: (no name) - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - (no file)
backup-20070125-144043-811
O2 - BHO: (no name) - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - (no file)
backup-20070125-144043-633
O2 - BHO: (no name) - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - (no file)
backup-20070125-144043-601
O2 - BHO: (no name) - {7D0BDFB8-2509-447B-AD0E-C7BEF92B3A13} - (no file)
backup-20070125-144043-255
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
backup-20070125-144043-338
O2 - BHO: (no name) - {48FBBE96-9506-E289-8896-0BBCAA395149} - (no file)
backup-20070124-102428-638
O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Unknown owner - C:\WINDOWS\system32\Brmfrmps.exe" -service (file missing)
backup-20070124-102405-136
O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Unknown owner - C:\WINDOWS\system32\Brmfrmps.exe" -service (file missing)
backup-20070122-164047-133
O20 - Winlogon Notify: WgaLogon - WgaLogon.dll (file missing)
backup-20070122-134902-467
O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Unknown owner - C:\WINDOWS\system32\Brmfrmps.exe" -service (file missing)
backup-20070122-134902-107
O16 - DPF: {C606BA60-AB76-48B6-96A7-2C4D5C386F70} -
backup-20070122-134902-991
O23 - Service: NOD32 Kernel Service (NOD32krn) - Eset - C:\Program Files\NOD32\nod32krn.exe
backup-20070122-134902-911
O16 - DPF: {44990301-3C9D-426D-81DF-AAB636FA4345} -
backup-20070122-134902-481
O16 - DPF: {44990200-3C9D-426D-81DF-AAB636FA4345} -
backup-20070122-134902-319
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} -
backup-20070122-134902-681
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} -
backup-20070122-134902-603
O2 - BHO: (no name) - {7D0BDFB8-2509-447B-AD0E-C7BEF92B3A13} - (no file)
backup-20070122-134902-778
O2 - BHO: (no name) - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - (no file)
backup-20070122-134902-623
O2 - BHO: (no name) - {48FBBE96-9506-E289-8896-0BBCAA395149} - (no file)
backup-20070122-134902-592
O2 - BHO: (no name) - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - (no file)
backup-20070122-134902-382
O2 - BHO: (no name) - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - (no file)
backup-20070122-134902-414
O2 - BHO: (no name) - {C004DEC2-2623-438e-9CA2-C9043AB28508} - (no file)
backup-20061111-100024-822
O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Unknown owner - C:\WINDOWS\system32\Brmfrmps.exe" -service (file missing)
backup-20061111-095941-660
O23 - Service: Automatic LiveUpdate Scheduler - Unknown owner - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe (file missing)
backup-20061111-095851-815
O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Unknown owner - C:\WINDOWS\system32\Brmfrmps.exe" -service (file missing)
backup-20061111-095745-519
O16 - DPF: {C606BA60-AB76-48B6-96A7-2C4D5C386F70} (PreQualifier Class) -
http://help.broadbandassist.com/prequal/MotivePreQual.cab
backup-20061111-095745-883
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
backup-20061111-095745-653
O16 - DPF: {44990301-3C9D-426D-81DF-AAB636FA4345} -
http://www.symantec.com/techsupp/asa/ctrl/tgctlsr.cab
backup-20061111-095745-382
O16 - DPF: {44990200-3C9D-426D-81DF-AAB636FA4345} -
http://www.symantec.com/techsupp/asa/ctrl/tgctlsi.cab
backup-20061111-095745-586
O16 - DPF: {3451DEDE-631F-421C-8127-FD793AFC6CC8} -
http://www.symantec.com/techsupp/asa/ctrl/SymAData.cab
backup-20061111-095744-811
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) -
http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
backup-20061111-095744-443
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} -
http://www.symantec.com/techsupp/asa/ctrl/LSSupCtl.cab
backup-20061111-095744-902
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
backup-20061111-095744-703
O3 - Toolbar: (no name) - {C4069E3A-68F1-403E-B40E-20066696354B} - (no file)
backup-20061111-095744-799
O2 - BHO: (no name) - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - (no file)
backup-20061111-095744-436
O3 - Toolbar: (no name) - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - (no file)
backup-20061111-095744-614
O2 - BHO: (no name) - {C004DEC2-2623-438e-9CA2-C9043AB28508} - (no file)
backup-20061111-095744-467
O2 - BHO: (no name) - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - (no file)
backup-20061111-095744-832
O2 - BHO: (no name) - {48FBBE96-9506-E289-8896-0BBCAA395149} - C:\WINDOWS\system32\eeesojj.dll (file missing)
backup-20061111-095744-687
O2 - BHO: (no name) - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - (no file)
backup-20061013-010726-739
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=55245&clcid={SUB_CLCID}
backup-20061012-033016-737
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://securityresponse.symantec.com/avcenter/fix_homepage/
backup-20061012-032857-356
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=55245&clcid={SUB_CLCID}
backup-20061012-032733-517
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=55245&clcid={SUB_CLCID}
backup-20061012-013532-945
O20 - Winlogon Notify: winjvd32 - winjvd32.dll (file missing)
backup-20061012-013532-171
O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Unknown owner - C:\WINDOWS\system32\Brmfrmps.exe" -service (file missing)
backup-20061012-013532-115
O20 - Winlogon Notify: ddaba - C:\WINDOWS\system32\ddaba.dll (file missing)
backup-20061012-013531-879
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
backup-20061012-013531-994
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
backup-20061012-013531-318
O2 - BHO: (no name) - {21BAC9C2-0B1D-4D07-846A-21B1C9E76098} - C:\WINDOWS\system32\ddaba.dll (file missing)
backup-20061012-013531-599
O2 - BHO: ToolBar888 - {C004DEC2-2623-438e-9CA2-C9043AB28508} - C:\Program Files\Common Files\{3C534600-0A2E-2057-0813-03030217002c}\MyToolBar.dll (file missing)
backup-20061012-013531-345
R3 - URLSearchHook: (no name) - {A8BD6820-6ED7-423E-9558-2D1486B0FEEA} - (no file)
Contents of the 'Scheduled Tasks' folder
C:\WINDOWS\tasks\MP Scheduled Scan.job
C:\WINDOWS\tasks\Spybot - Search & Destroy - Scheduled Task.job
C:\WINDOWS\tasks\SyncBackSE Group Run.job
Completion time: 07-02-02 12:05:28